Information Systems Security Officer

Fusion
Chantilly, VA, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Security Cyber Security Information Systems Identity and Access Management Information Security Management Information Systems Security Architecture Professional Nmap HP WebInspect Information Technology Tenable Nessus
+2 more
Splunk Vulnerability Analysis

Job description

  • Lead, mentor, and supervise a team of contractor security professionals responsible for the end-to-end implementation of the RMF lifecycle for FBI IT systems.
  • Will fill in as an ISSO for additional systems as needed.
  • Oversee and coordinate activities within the Prepare step, ensuring roles, responsibilities, and risk management strategies are clearly defined and maintained.
  • Guide system categorization efforts to ensure all information systems are appropriately classified based on mission/business impact and regulatory requirements.
  • Advise on the selection, tailoring, and documentation of security controls aligned with system categorizations, Bureau risk appetite, and compliance requirements.
  • Oversee the implementation of technical, operational, and management controls throughout system and application lifecycles, with a particular focus on quality and completeness of all deliverables.
  • Ensure comprehensive security control assessments are planned, executed, and documented to validate the effectiveness of implemented safeguards.
  • Prepare risk management documentation for system authorization and executive decision-making. - Direct ongoing monitoring and continuous assessment activities, collecting metrics to adjust security strategies and ensure sustained compliance.
  • Serve as a principal technical advisor on cybersecurity, bringing subject-matter expertise to risk analysis, incident response, system remediation, and audit support efforts.
  • Foster a culture of security awareness, providing technical guidance and training to both team members and stakeholders.
  • Track, report, and communicate status, risks, and improvement opportunities related to security engineering activities to leadership and stakeholders.
  • Maintain up-to-date knowledge of RMF, NIST guidance, and industry best practices in support of continuous process improvement.

What matters to you matters to us.

Fusion Technology values its employees and works hard to ensure proper care for them and their families. We desire to compensate employees in a competitive, motivational, fair, and equitable way with other employers in the marketplace. Salary is only one component of employee compensation but an integral part of recruiting and retaining qualified employees. However, at Fusion Technology, we take a comprehensive approach and consider each employee’s needs to tailor a compensation plan that provides financial security and peace of mind. Our competitive package includes a best-in-class matching 401K program, a comprehensive healthcare plan through Cigna, a competitive employer contribution to a health savings account, vision and dental plans, life insurance, short- and long-term disability, and personal leave, in addition to paid certifications and training.

Requirements

Do you have experience in Vulnerability scanning?, Do you have a Bachelor’s degree?, Security-cleared Professional: A Top Secret Clearance is required to be considered for this position.

Education and Experience: You have a Bachelor’s Degree and/or an advanced degree in computer science, business management, or another IT related discipline is preferred. Experience in lieu of degree can be considered.

  • 7 years of experience serving as an Information Systems Security Officer (ISSO) at a cleared facility.
  • 9 years of work experience in a computer science or cybersecurity related field.
  • Familiarity with the use and operation of security tools including Tenable Nessus and/or Security Center, Splunk, IBM Guardium, HP WebInspect, Network Mapper (NMAP), and/or similar applications.
  • Experience with cloud security.

Certifications: Certified Information Systems Security Professional (CISSP), Global Information Security Professional (GISP), or the CompTIA Advanced Security Practitioner (CASP) or other certifications exemplifying skill sets such as those described in DoD Instruction 8570.1 Information Assurance Management (IAM) Level III proficiency. Additional requirement to hold at least one Security certification from AWS, Azure, or GCP:o AWS Certified Security - Specialtyo (ISC)2 Certified Cloud Security Professional (CCSP)o AWS Certified Solutions Architect - Associateo AZ-500: Microsoft Certified: Azure Security Engineer Associateo Google - Professional Cloud Security Engineer

Benefits & conditions

Pulled from the full job description

  • Paid training
  • 401(k) matching
  • Vision insurance
  • Health savings account
  • Dental insurance
  • Life insurance
  • Disability insurance

About the company

Fusion Technology is a performance-driven HUBZone Small Business concern residing in the heart of the beautiful mountainsides of West Virginia, steps away from the Federal Bureau of Investigation’s Criminal Justice Information Services Division’s Headquarters. Founded in 2007 by an Engineer-by-trade, Fusion Technology dedicates our valuable resources to providing comprehensive IT services and solutions to mission-critical US Government programs and the Intel Community.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:52 min

Refining the agent by automating physical hardware restarts

Marc Plogas Marc Plogas · WWC Europe 2026

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

Videos

See all

Related articles

See all